2026 CVE Vulnerabilities

52,167 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-3964MEDIUM5.3A weakness has been identified in OpenAkita up to 1.24.3. This impacts the function run of the file src/openakita/tools/...
CVE-2026-3962MEDIUM4.3A vulnerability was identified in Jcharis Machine-Learning-Web-Apps up to a6996b634d98ccec4701ac8934016e8175b60eb5. The ...
CVE-2026-31988MEDIUM6.9yauzl (aka Yet Another Unzip Library) version 3.2.0 for Node.js contains an off-by-one error in the NTFS extended timest...
CVE-2026-3961MEDIUM6.3A vulnerability was determined in zyddnys manga-image-translator up to beta-0.3. The affected element is the function to...
CVE-2026-3959MEDIUM5.3A vulnerability was found in 0xKoda WireMCP up to 7f45f8b2b4adeb76be8c6227eefb38533fdd6b1e. Impacted is the function ser...
CVE-2026-3958MEDIUM6.3A vulnerability has been found in Woahai321 ListSync up to 0.6.6. This issue affects the function requests.post of the f...
CVE-2026-3942MEDIUM4.3Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform U...
CVE-2026-3941MEDIUM4.3Insufficient policy enforcement in DevTools in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to bypass ...
CVE-2026-3940MEDIUM5.3Insufficient policy enforcement in DevTools in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to bypass ...
CVE-2026-3939MEDIUM5.3Insufficient policy enforcement in PDF in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to bypass navig...
CVE-2026-3938MEDIUM4.3Insufficient policy enforcement in Clipboard in Google Chrome prior to 146.0.7680.71 allowed a remote attacker who had c...
CVE-2026-3937MEDIUM6.5Incorrect security UI in Downloads in Google Chrome on Android prior to 146.0.7680.71 allowed a remote attacker to perfo...
CVE-2026-3935MEDIUM6.5Incorrect security UI in WebAppInstalls in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform UI ...
CVE-2026-3934MEDIUM6.5Insufficient policy enforcement in ChromeDriver in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to byp...
CVE-2026-3930MEDIUM5.3Unsafe navigation in Navigation in Google Chrome on iOS prior to 146.0.7680.71 allowed a remote attacker to bypass navig...
CVE-2026-3928MEDIUM4.3Insufficient policy enforcement in Extensions in Google Chrome prior to 146.0.7680.71 allowed an attacker who convinced ...
CVE-2026-3927MEDIUM4.3Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform U...
CVE-2026-3925MEDIUM4.3Incorrect security UI in LookalikeChecks in Google Chrome on Android prior to 146.0.7680.71 allowed a remote attacker to...
CVE-2026-32128MEDIUM6.3FastGPT is an AI Agent building platform. In 4.14.7 and earlier, FastGPT's Python Sandbox (fastgpt-sandbox) includes gua...
CVE-2026-32117MEDIUM5.4The grafanacubism-panel plugin allows use of cubism.js in Grafana. In 0.1.2 and earlier, the panel's zoom-link handler p...
CVE-2026-3957MEDIUM4.7A flaw has been found in xierongwkhd weimai-wetapp up to 5fe9e8225be4f73f2c5087f134aff657bdf1c6f2. This vulnerability af...
CVE-2026-3956MEDIUM4.7A vulnerability was detected in xierongwkhd weimai-wetapp up to 5fe9e8225be4f73f2c5087f134aff657bdf1c6f2. This affects t...
CVE-2026-3955MEDIUM6.3A security vulnerability has been detected in elecV2P up to 3.8.3. Affected by this issue is the function runJSFile of t...
CVE-2026-32125MEDIUM5.4OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0....
CVE-2026-32124MEDIUM5.4OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0....

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now